aboutsummaryrefslogtreecommitdiff
path: root/security/integrity
diff options
context:
space:
mode:
authorGravatar Casey Schaufler <casey@schaufler-ca.com> 2018-01-08 10:25:32 -0800
committerGravatar Casey Schaufler <casey@schaufler-ca.com> 2018-01-10 09:29:14 -0800
commitd19dfe58b7ecbef3bd0c403c650200c57913ba1b (patch)
tree59ab1001fe590143cda52657a71b5d3087ae6b91 /security/integrity
parentSmack: fix dereferenced before check (diff)
downloadlinux-d19dfe58b7ecbef3bd0c403c650200c57913ba1b.tar.gz
linux-d19dfe58b7ecbef3bd0c403c650200c57913ba1b.tar.bz2
linux-d19dfe58b7ecbef3bd0c403c650200c57913ba1b.zip
Smack: Privilege check on key operations
Smack: Privilege check on key operations Operations on key objects are subjected to Smack policy even if the process is privileged. This is inconsistent with the general behavior of Smack and may cause issues with authentication by privileged daemons. This patch allows processes with CAP_MAC_OVERRIDE to access keys even if the Smack rules indicate otherwise. Reported-by: Jose Bollo <jobol@nonadev.net> Signed-off-by: Casey Schaufler <casey@schaufler-ca.com>
Diffstat (limited to 'security/integrity')
0 files changed, 0 insertions, 0 deletions